URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 58.57.183.170
Firstseen:2020-10-14 12:53:02 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-14 12:53:06 58.57.183.170Not listedAS4134 CHINANET-BACKBONE- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-09-08 00:35:15http://58.57.183.170:3383/mozi.aOffline tammeto
2021-09-05 10:51:15http://58.57.183.170:3383/mozi.mOffline tammeto
2021-08-16 22:14:11http://58.57.183.170:3383/bin.shOffline32-bit elf mips mirai ext Mozi ext geenensp
2021-07-28 05:37:36http://58.57.183.170:12749/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-28 05:20:11http://58.57.183.170:12749/iOffline32-bit elf mips geenensp
2021-07-28 04:51:04http://58.57.183.170:12749/bin.shOffline32-bit elf mips geenensp
2021-04-19 10:32:13http://58.57.183.170:56457/iOffline32-bit elf mips Mozi ext geenensp
2021-03-21 16:09:12http://58.57.183.170:27809/iOffline32-bit elf mips geenensp
2021-03-21 15:57:05http://58.57.183.170:27809/bin.shOffline32-bit elf mips geenensp
2021-03-05 03:41:05http://58.57.183.170:41903/iOffline32-bit elf mips geenensp
2021-03-05 03:12:06http://58.57.183.170:41903/bin.shOffline32-bit elf mips geenensp
2021-03-03 17:21:08http://58.57.183.170:41903/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-12-01 10:52:04http://58.57.183.170:31769/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-27 06:51:04http://58.57.183.170:36358/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-18 15:21:07http://58.57.183.170:11372/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-10 12:36:06http://58.57.183.170:32026/iOffline32-bit elf mips geenensp
2020-11-10 12:09:05http://58.57.183.170:32026/bin.shOffline32-bit elf mips geenensp
2020-10-18 08:56:05http://58.57.183.170:32733/iOffline32-bit elf mips mirai ext geenensp
2020-10-14 12:53:06http://58.57.183.170:32733/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-16 22:14:119e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2021-07-28 05:56:54459e454e45f08c917dec9342b7c6a586dbe9edfa4bb942dcd4766ecb446fbd1aelf  
2021-07-28 05:20:11459e454e45f08c917dec9342b7c6a586dbe9edfa4bb942dcd4766ecb446fbd1aelf  
2021-07-28 04:51:04459e454e45f08c917dec9342b7c6a586dbe9edfa4bb942dcd4766ecb446fbd1aelf  
2021-04-19 10:32:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-03-21 16:09:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-03-21 15:57:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-03-05 03:41:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-03-05 03:12:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-03-03 17:21:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-12-01 10:52:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-27 06:51:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-18 15:21:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-10 12:36:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-10 12:09:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-10-18 08:56:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-10-14 12:53:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai